Trojan

Trojan.Generic.7491724 malicious file

Malware Removal

The Trojan.Generic.7491724 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.7491724 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Creates a copy of itself

How to determine Trojan.Generic.7491724?


File Info:

name: 1F1D8E350E2146374AA1.mlw
path: /opt/CAPEv2/storage/binaries/c50ee11c6454ed704b2b93898c7673e26cf7c2d0e21d62d23b8f0822221aedf6
crc32: 77BDCC6E
md5: 1f1d8e350e2146374aa1d47101a72ff7
sha1: 8e1bd95516a2d52706a71645afc0fe7d9fa20811
sha256: c50ee11c6454ed704b2b93898c7673e26cf7c2d0e21d62d23b8f0822221aedf6
sha512: d8bcbf1f766f80954299cb151510c64ec2dfb78b585d11315b93f6737ae41007472d38a1d7074718b566bac29f859fb2d23049ce91a7c2a036a16ee47fad3c15
ssdeep: 3072:80nQdSV8dgtxW0Vs4JJQbjq807N73Rb1PhsXg2JI/iCLqI6QCx8pov2YCdroyfrC:Rn18dgrs4kfq371hFh4Zv8pjhdcmY
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10F4413C2C64B731CE6A7E3F58E9187355D98E8531A297B0B6F9C21685C1A29C46CF28C
sha3_384: d1a05bf5fd1816aa94d9a086a7d5d9aa04796baeac512d23c8d61ac02539dcca488244a89796fc4a9af4bfc2786c0b76
ep_bytes: 60be002045008dbe00f0faffc787d024
timestamp: 1992-06-19 22:22:17

Version Info:

CompanyName: A's Freeware
FileDescription: PhraseSynthesaurus
FileVersion: 64.0.0.0
InternalName: Мозгокрут
LegalCopyright: Alexander Glazkov
LegalTrademarks: A
OriginalFilename: Sovetnik.exe
ProductName: Sovetnik
ProductVersion: Release
Comments: Синтезатор логичных фраз
Translation: 0x0419 0x04e3

Trojan.Generic.7491724 also known as:

LionicTrojan.Win32.Generic.4!c
FireEyeTrojan.Generic.7491724
McAfeeArtemis!1F1D8E350E21
CylanceUnsafe
AlibabaTrojan:Win32/Banker.1bd0c45e
APEXMalicious
BitDefenderTrojan.Generic.7491724
MicroWorld-eScanTrojan.Generic.7491724
TencentWin32.Trojan.Delf.Dzar
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXRA-GS!71E09E16FC14
EmsisoftTrojan.Generic.7491724 (B)
Paloaltogeneric.ml
WebrootW32.Trojan.Gen
MicrosoftTrojan:Win32/Occamy.CC5
GDataTrojan.Generic.7491724
ALYacTrojan.Generic.7491724
MAXmalware (ai score=84)
RisingTrojan.Tiggre!8.ED98 (CLOUD)
YandexTrojan.Delf!ZcrI/wx6Tz4
MaxSecureTrojan.Malware.2817002.susgen
FortinetW32/Fareit.A
Cybereasonmalicious.50e214

How to remove Trojan.Generic.7491724?

Trojan.Generic.7491724 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment